Defendor — DeFi Security
الذهاب إلى القناة على Telegram
2 454
المشتركون
+324 ساعات
+177 أيام
+8530 أيام
جاري تحميل البيانات...
القنوات المماثلة
لا توجد بيانات
هل تواجه مشاكل؟ يرجى تحديث الصفحة أو الاتصال بمدير الدعم الخاص بنا.
سحابة العلامات
الإشارات الواردة والصادرة
---
---
---
---
---
---
جذب المشتركين
أغسطس '26
أغسطس '26
+99
في 3 قنوات
يوليو '26
+128
في 3 قنوات
Get PRO
يونيو '26
+188
في 0 قنوات
Get PRO
مايو '26
+170
في 0 قنوات
Get PRO
أبريل '26
+164
في 4 قنوات
Get PRO
مارس '26
+69
في 1 قنوات
Get PRO
فبراير '26
+71
في 0 قنوات
Get PRO
يناير '26
+150
في 1 قنوات
Get PRO
ديسمبر '25
+302
في 0 قنوات
Get PRO
نوفمبر '25
+402
في 4 قنوات
Get PRO
أكتوبر '25
+123
في 3 قنوات
Get PRO
سبتمبر '25
+239
في 0 قنوات
Get PRO
أغسطس '25
+125
في 0 قنوات
Get PRO
يوليو '25
+565
في 3 قنوات
| التاريخ | نمو المشتركين | الإشارات | القنوات | |
| 28 أغسطس | +3 | |||
| 27 أغسطس | +6 | |||
| 26 أغسطس | +2 | |||
| 25 أغسطس | +5 | |||
| 24 أغسطس | +2 | |||
| 23 أغسطس | +2 | |||
| 22 أغسطس | +2 | |||
| 21 أغسطس | +5 | |||
| 20 أغسطس | +11 | |||
| 19 أغسطس | +9 | |||
| 18 أغسطس | 0 | |||
| 17 أغسطس | +1 | |||
| 16 أغسطس | +5 | |||
| 15 أغسطس | +2 | |||
| 14 أغسطس | 0 | |||
| 13 أغسطس | +8 | |||
| 12 أغسطس | +15 | |||
| 11 أغسطس | +1 | |||
| 10 أغسطس | 0 | |||
| 09 أغسطس | +3 | |||
| 08 أغسطس | 0 | |||
| 07 أغسطس | 0 | |||
| 06 أغسطس | +7 | |||
| 05 أغسطس | +5 | |||
| 04 أغسطس | 0 | |||
| 03 أغسطس | +2 | |||
| 02 أغسطس | +2 | |||
| 01 أغسطس | +1 |
منشورات القناة
🚨 Solana Neobank Avici Reportedly Hacked, $600K+ Drained
More than $600,000 has reportedly been drained from user accounts on the Solana-based neobank.
Details on the root cause have not yet been disclosed.
🔗 Details
| 2 | 🚔 Two TeamPCP Members Arrested in Perth, Australia
Ruben Ian Thomson, 21, and Louis Michael Gaebler, 23, were arrested over the group's npm supply chain attacks.
The group is linked to the Shai-Hulud worm and other npm ecosystem compromises.
🔗 Details | 279 |
| 3 | 🐄 CashCowCoin Loses ~$117.4K in Reserve-Draining Exploit
A flawed sell function let the router burn CCC tokens post-swap while keeping the reduced WBNB reserve, draining the pool across 80 repeated sell cycles.
Stolen funds were routed through a profit splitter contract to a separate owner wallet.
🔗 Details | 303 |
| 4 | 🔐 Researchers Reproduce Transaction Replacement Attack on Ledger
OneKey Anzen exploited a race condition in Ledger Ethereum app 1.22.1, letting an attacker swap the transaction being signed while the user still sees the original one.
Ledger fixed the issue in version 1.22.3, and users on older versions are urged to update.
🔗 Details | 348 |
| 5 | 🔑 Realio Network Loses $6.2M After Signing Key Takeover
Attackers seized realio[.]fund's single hot signing key and swept treasury and custodial wallets across five chains, draining 127.9M RIO ($6.2M).
No contract bug or user approval was involved; the attacker has cashed out roughly $317K so far.
🔗 Details | 339 |
| 6 | 🚨 Moonwell on Base Loses ~$5.7M in Oracle Manipulation Exploit
The attacker manipulated the MAMO collateral oracle, pushing its price up roughly 8x, then borrowed real cbBTC against the inflated mMAMO collateral.
About 71.36 cbBTC (~$5.7M) was drained across multiple transactions, with the largest single borrow around $1.15M.
🔗 Details | 379 |
| 7 | ⚡ Core Lightning Urges Node Operators to Upgrade or Go Offline
Maintainers are handling multiple AI-generated vulnerability reports and warn operators to install an upcoming patch or go offline.
Fix details stay under a two-week embargo, with no public CVE or advisory yet.
🔗 Details | 359 |
| 8 | 🔓 Provenance Blockchain Bug Let Anyone Self-Grant Admin Control
A stale supply field let any user pass a "controls 100% of supply" check with zero tokens, granting admin, mint, and withdraw rights on 82 live markers.
Two transactions were enough to exploit it; the bug was reported in April and fully fixed by June, with no funds lost.
🔗 Details | 370 |
| 9 | 📚 Curated Web3 Security Hub Worth a Bookmark
This resource collects role-based roadmaps for EVM, Solana, Move, Cairo and ZK auditors, plus tools for fuzzing, invariant testing, formal verification and AI-assisted workflows.
It also includes public audit reports, incident response guides and launch checklists for both builders and auditors.
🔗 Details | 374 |
| 10 | 🚨 Cosmos Labs Urges Chains to Patch Cosmos EVM Now
Chains running Cosmos EVM versions below v0.6.2 or v0.7.2 should immediately halt and upgrade to the patched releases.
Teams that haven't shared security contact details with Cosmos Labs are asked to reach out for critical updates.
🔗 Details | 385 |
| 11 | 🚨 Enjin Loses ~$162K in Storage Slot Collision Exploit
The exploit abused a slot collision between an adapter's initialize function and the proxy's pendingManager storage, letting the attacker hijack manager rights via DELEGATECALL.
After gaining control, the attacker registered a malicious adapter and drained victim assets through a liquidation path.
🔗 Details | 388 |
| 12 | 🔍 Adevar Labs Named Among Top Move Audit Firms for 2026
The ranking covers the leading Aptos and Sui audit specialists, including OtterSec, MoveBit, Certora, and Adevar Labs, based on portfolio depth and formal verification capability.
Choice depends on chain, budget, and whether your protocol needs Move Prover formal verification for critical invariants.
🔗 Details | 392 |
| 13 | 🕵️ Open Krit Privately Flagged Same Cosmos-EVM Bug 3 Weeks Before KiiChain Hack
Open Krit reported the same unsafe StateDB balance-subtraction primitive to another Cosmos-based project weeks earlier, which fixed it fast — but didn't check other chains, partly since only bounty-program targets get proactively researched.
The underflow alone isn't exploitable without a separate reachability bug, which is why it wasn't flagged as industry-wide; they say it shows why upstream/downstream security coordination matters.
🔗 Details | 395 |
| 14 | 🔴 KiiChain Drained ~$148M in Cosmos-EVM Exploit, Chain Halted
Attacker exploited three bugs in the shared Cosmos EVM module to drain 148M KII, bridging 67.6M KII to BSC via Hyperlane and selling most of it; the chain halted at block 9355723, freezing 80.7M KII (54.4%) on-chain.
Root cause fixes are being tested before restart; two of three upstream bugs remain unpatched, leaving other Cosmos EVM chains with vesting accounts exposed.
🔗 Details | 403 |
| 15 | 🚨 Specter Investigation: Ongoing EVM Wallet Draining
An attacker has drained $415K+ from 30+ victim addresses across EVM chains and is still actively sweeping funds.
A separate attacker drained roughly $870K from 100+ addresses on August 10, with one victim losing $800K; root cause remains unidentified.
🔗 Details | 409 |
| 16 | 🌉 Warp Green Bridge Was Exploited — Root Cause Confirmed
The ERC20 bridge was exploited via a flaw on the Chia-side; damage is confirmed limited to $93,000 USDC, now converted to ETH by the attacker.
The protocol remains paused while the team works with validators on a full postmortem; the CAT bridge (wXCH) appears unaffected.
🔗 Details | 405 |
| 17 | 🚨 Cosmos EVM Module Hit by Ongoing Security Incident
Cosmos Labs security teams are responding and have advised affected Cosmos EVM chains to halt validators.
A full incident report will follow once the situation is resolved.
🔗 Details | 435 |
| 18 | ⚠️ BitcoinIRA & iTrustCapital Allegedly Breached, Undisclosed
Per Zach: both US crypto investment platforms suffered data breaches this year, leaking personal, banking, and portfolio data — undisclosed publicly.
One victim lost $1.2M+ in June 2026 after a threat actor exploited the leaked database.
🔗 Details | 413 |
| 19 | 🔒 Ledger Ethereum App Vulnerability — Already Fixed
A flaw in certain clear-signing flows of the Ledger Ethereum app was found by Ledger Donjon and patched two weeks ago, per CTO Charles Guillemet.
Users on updated firmware and apps are protected; Guillemet noted a security firm disclosed the issue only after the fix shipped.
🔗 Details | 412 |
| 20 | 🥪 Arrakis Finance Hack Wasn't Oracle Manipulation
The exploit had nothing to do with spot price tricks — the vault's proportional mint/redeem design already blocks that attack vector.
The real flaw was in burn(): unclaimed LP fees get compounded back into the pool, letting the attacker sandwich a mint/burn sequence to pull out more tokens than deposited.
🔗 Details | 410 |
